Splunk Content Developer

Baltimore, MD

Are you a dedicated cybersecurity enthusiast ready to make a meaningful impact? Do you possess the drive to anticipate emerging threats and devise innovative strategies? If so, you might be the perfect fit for the Splunk Content Developer role at Fivesky!

Who You Are:

  • Splunk Maestro: Proficient in Splunk and skilled in SPL, you're adept at unraveling data for profound insights. You effortlessly navigate Splunk ES and SIEM platforms, driving advanced threat detection and rapid response.
  • Unified Response Collaborator: Your forte lies in collaborating seamlessly with SOC and IR teams, optimizing detection and response efforts for superior cybersecurity outcomes.
  • Scripting Virtuoso: Your prowess in Python and Bash scripting empowers you to automate incident response, ensuring efficient and effective actions.
  • Cloud Security Sentinel: Adept with AWS and Azure, you guarantee the fortification of cloud security protocols, shielding critical data from potential threats.
  • Linux Luminary: Your working knowledge of Linux administration ensures a seamless operational environment for insightful log analysis.
  • Playbook Prodigy: Armed with a blend of technical and strategic expertise, you mastermind comprehensive incident response playbooks that are second to none.
  • Cyber Guardian: Armed with a Bachelor's Degree in Computer Science, you're committed to safeguarding digital landscapes and upholding cybersecurity at every turn.
  • Research Trailblazer and Communication Virtuoso: You're a frontrunner in ongoing research and development, always staying ahead of dynamic cybersecurity trends. Your ability to convey intricate ideas with exceptional written and verbal skills fosters robust teamwork within the SOC.

What You'll Do:

  • Log Analysis Luminary: Decode network and security logs with precision to spot anomalies, vulnerabilities, and reinforce defensive strategies.
  • Threat Detection Dynamo: You're at the forefront of devising cutting-edge threat detection scenarios, preempting emerging risks with poise.
  • Splunk Architect: Your mastery of Splunk is harnessed to elevate security analytics, refining incident response strategies for unparalleled efficiency.
  • Insightful Dashboard Artisan: Your artistry extends to crafting informative SOC metric dashboards, guiding informed decision-making processes.
  • Automation Artificer: You'll create SOAR automation strategies (Python) that expedite incident response, ensuring rapid and effective actions.
  • Precision Rule Artisan: With your expertise, you formulate new correlation rules that amplify threat detection accuracy.

It’ll Be Awesome If You Have: 

  • Scripting Virtuosity: Proficiency in Python, Bash, and Phantom lends to your prowess in security orchestration.
  • Data Flow Virtuosity: You employ high-throughput messaging and data integration, ensuring seamless processing of security events.
  • Data Format Interpreter: Your prowess in decoding diverse data formats (HTTP, REST APIs, JSON, syslog) enhances comprehensive log analysis.
  • ETL Conductor: Skillfully orchestrating ETL processes for data transformation and elevated cybersecurity analysis is in your toolkit.
  • Nifi Navigator: Navigating Nifi for streamlined data flow and processing is second nature.
  • HTTP and REST API Aficionado: Your knack for understanding HTTP and REST APIs ensures seamless data communication.
  • JSON and Syslog Sleuth: Your ability to interpret JSON and syslog data formats amplifies your comprehensive log analysis capabilities.
  • Data Doyen: Your familiarity with Data Bricks and Snowflake platforms amplifies your prowess in effective data analytics.
  • MITRE Mentor: Proficiency with the MITRE ATT&CK framework enhances your ability to detect and respond to threats.
  • Playbook Producer: Your knack for creating and implementing incident response playbooks is invaluable.
  • SIEM Specialist: Proficiency in utilizing SIEM platforms, particularly as the opener under the 'Awesome' section.
  • Analytical Sage: Your analytical prowess is your compass for navigating intricate security challenges.
  • Self-Starter: You're a proactive self-starter who thrives in fast-paced environments.
  • Interpersonal Maestro: Your interpersonal skills, both written and oral, foster collaboration within the team and beyond.

Who we are: 

Fivesky is a fast-growing, global technology solution provider. We partner with the world’s largest financial service firms to deliver networking/infrastructure, cybersecurity, and cloud-based solutions for complex, global projects.

At Fivesky, our employees are our greatest asset and we strive to build a strong team culture centered on highly competitive compensation, professional development, career advancement, and fun.

Fivesky is an equal opportunity employer. In accordance with anti-discrimination law, it is the purpose of this policy to effectuate these principles and mandates. Fivesky prohibits discrimination and harassment of any type and affords equal employment opportunities to employees and applicants without regard to race, color, religion, sex, sexual orientation, gender identity or expression, pregnancy, age, national origin, disability status, genetic information, protected veteran status (United States positions), or any other characteristic protected by law. 

This is a Full Time Employed position in Baltimore, MD. The compensation package is based on experience and qualifications.

(FS-RID-0615)

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  14  0  0

Tags: Analytics APIs Automation AWS Azure Bash Cloud Computer Science Data Analytics Incident response JSON Linux Log analysis MITRE ATT&CK Python REST API Scripting SIEM Snowflake SOAR SOC Splunk Threat detection Vulnerabilities

Perks/benefits: Career development Competitive pay Team events

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.